GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,635
Maven
5,000+
npm
4,262
NuGet
760
pip
4,057
Pub
12
RubyGems
956
Rust
1,054
Swift
45
Unreviewed advisories
All unreviewed
5,000+
122 advisories
Filter by severity
Information disclosure while processing message from client with invalid payload.
Moderate
Unreviewed
CVE-2025-47362
was published
Nov 4, 2025
Information disclosure while registering commands from clients with diag through diagHal.
Moderate
Unreviewed
CVE-2025-27064
was published
Nov 4, 2025
PerfreeBlog v4.0.11 has an arbitrary file read vulnerability in the validThemeFilePath function
Moderate
Unreviewed
CVE-2025-60729
was published
Oct 24, 2025
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose...
Moderate
Unreviewed
CVE-2025-55325
was published
Oct 14, 2025
Transient DOS while processing video packets received from video firmware.
Moderate
Unreviewed
CVE-2025-27041
was published
Oct 9, 2025
Information disclosure while processing batch command execution in Video driver.
Moderate
Unreviewed
CVE-2025-27045
was published
Oct 9, 2025
Transient DOS while processing IOCTL call for image encoding.
Moderate
Unreviewed
CVE-2025-27049
was published
Oct 9, 2025
information disclosure while invoking calibration data from user space to update firmware size.
Moderate
Unreviewed
CVE-2025-27030
was published
Sep 24, 2025
Information disclosure while running video usecase having rogue firmware.
Moderate
Unreviewed
CVE-2025-27033
was published
Sep 24, 2025
Information disclosure when Video engine escape input data is less than expected minimum size.
Moderate
Unreviewed
CVE-2025-27036
was published
Sep 24, 2025
Buffer Over-read, Off-by-one Error vulnerability in RTI Connext Professional (Core Libraries)...
Moderate
Unreviewed
CVE-2025-4582
was published
Sep 23, 2025
Buffer over-read in Microsoft Office Excel allows an unauthorized attacker to disclose...
Moderate
Unreviewed
CVE-2025-54901
was published
Sep 9, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-53797
was published
Sep 9, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-53798
was published
Sep 9, 2025
Buffer over-read in Windows Routing and Remote Access Service (RRAS) allows an unauthorized...
Moderate
Unreviewed
CVE-2025-53796
was published
Sep 9, 2025
Buffer over-read in Microsoft Office Word allows an unauthorized attacker to disclose information...
Moderate
Unreviewed
CVE-2025-53736
was published
Aug 12, 2025
Information disclosure while opening a fastrpc session when domain is not sanitized.
Moderate
Unreviewed
CVE-2025-21457
was published
Aug 6, 2025
Duplicate Advisory: `openssl` `X509VerifyParamRef::set_host` buffer over-read
Moderate
GHSA-gw89-822v-8v8g
was published
for
openssl
(Rust)
Jul 28, 2025
•
withdrawn
Buffer Over-read vulnerability in ABB AC500 V2.This issue affects AC500 V2: through 2.5.2.
Moderate
Unreviewed
CVE-2025-7745
was published
Jul 25, 2025
Buffer over-read in Storage Port Driver allows an authorized attacker to disclose information...
Moderate
Unreviewed
CVE-2025-49684
was published
Jul 8, 2025
Buffer over-read in Windows Storage Management Provider allows an authorized attacker to disclose...
Moderate
Unreviewed
CVE-2025-24068
was published
Jun 10, 2025
Buffer over-read in Windows SMB allows an authorized attacker to disclose information over a...
Moderate
Unreviewed
CVE-2025-29956
was published
May 13, 2025
Buffer over-read in PostgreSQL GB18030 encoding validation allows a database input provider to...
Moderate
Unreviewed
CVE-2025-4207
was published
May 8, 2025
ECMP dissector crash in Wireshark 4.4.0 to 4.4.1 and 4.2.0 to 4.2.8 allows denial of service via...
Moderate
Unreviewed
CVE-2024-11596
was published
May 7, 2025
Memory corruption due to improper bounds check while command handling in camera-kernel driver.
Moderate
Unreviewed
CVE-2024-45568
was published
May 6, 2025
ProTip!
Advisories are also available from the
GraphQL API